CVE-2005-3364

Multiple SQL injection vulnerabilities in DboardGear allow remote attackers to execute arbitrary SQL commands via (1) the buddy parameter in buddy.php, (2) the u2uid parameter in u2u.php, and (3) an invalid theme file in the themes action to ctrtools.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:platinum:dboardgear:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-10-30 14:34

Updated : 2024-02-04 16:52


NVD link : CVE-2005-3364

Mitre link : CVE-2005-3364

CVE.ORG link : CVE-2005-3364


JSON object : View

Products Affected

platinum

  • dboardgear